Multiple security issues have been found in the Mozilla Firefox web
browser, which could result in spoofing.
Category Archives: Advisories
xen-4.15.3-4.fc35
FEDORA-2022-a0d7a5eaf2
Packages in this update:
xen-4.15.3-4.fc35
Update description:
insufficient TLB flush for x86 PV guests in shadow mode
[XSA-408, CVE-2022-33745]
Retbleed – arbitrary speculative code execution with return instructions
[XSA-407, CVE-2022-23816, CVE-2022-23825, CVE-2022-29900]
xen-4.16.1-8.fc36
FEDORA-2022-4f7cd241e2
Packages in this update:
xen-4.16.1-8.fc36
Update description:
insufficient TLB flush for x86 PV guests in shadow mode
[XSA-408, CVE-2022-33745]
tmux-top-0.1.1-5.fc36
FEDORA-2022-939ba2e405
Packages in this update:
tmux-top-0.1.1-5.fc36
Update description:
New upstream release: 0.1.1
DSA-5190 spip – security update
It was discovered that SPIP, a website engine for publishing, would allow
a malicious user to execute arbitrary code or escalate privileges.
DSA-5192 openjdk-17 – security update
Several vulnerabilities have been discovered in the OpenJDK Java runtime,
which may result in the execution of arbitrary Java bytecode or the
bypass of the Java sandbox.
DSA-5191 linux – security update
Several vulnerabilities have been discovered in the Linux kernel that may
lead to privilege escalation, denial of service or information leaks:
kubernetes-1.24.1-7.fc36
FEDORA-2022-ee81809570
Packages in this update:
kubernetes-1.24.1-7.fc36
Update description:
This package release removes references completely for Dockershim. If you still require support for Docker please visit for more info https://www.mirantis.com/blog/mirantis-to-take-over-support-of-kubernetes-dockershim-2/
This was originally a bug-fix that removed arguments no longer used in the 1.24 Kublet which stemmed from Dockershim. Since Dockershim is now out of tree this package won’t support it unless there’s a compelling use-case.
More info: https://kubernetes.io/blog/2022/02/17/dockershim-faq/
Shell completions have been added beyond bash. Fish and shell completions are now included.
Users should also test the usage of sysusers
kubernetes-1.24.1-5.fc36
FEDORA-2022-3efc2a74cf
Packages in this update:
kubernetes-1.24.1-5.fc36
Update description:
This package release removes references completely for Dockershim. If you still require support for Docker please visit for more info https://www.mirantis.com/blog/mirantis-to-take-over-support-of-kubernetes-dockershim-2/
This was originally a bug-fix that removed arguments no longer used in the 1.24 Kublet which stemmed from Dockershim. Since Dockershim is now out of tree this package won’t support it unless there’s a compelling use-case.
More info: https://kubernetes.io/blog/2022/02/17/dockershim-faq/
python-ujson-5.4.0-1.fc35
FEDORA-2022-33e816bc37
Packages in this update:
python-ujson-5.4.0-1.fc35
Update description:
Security fix for CVE-2022-31116, CVE-2022-31117, and CVE-2021-45958.
See https://github.com/ultrajson/ultrajson/releases for release notes since 3.0.0. Despite the major version bump, this should be a compatible update. See also https://pagure.io/fesco/issue/2834.